CVE-2021-31617

In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 through 3.11.8, and 4.0.1 through 4.2.2, mishandling of memory management can lead to remote code execution.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:stormshield:network_security:*:*:*:*:*:*:*:*
cpe:2.3:a:stormshield:network_security:*:*:*:*:*:*:*:*
cpe:2.3:a:stormshield:network_security:*:*:*:*:*:*:*:*
cpe:2.3:a:stormshield:network_security:*:*:*:*:*:*:*:*

History

07 Feb 2022, 19:34

Type Values Removed Values Added
CPE cpe:2.3:a:stormshield:network_security:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
First Time Stormshield network Security
Stormshield
CWE CWE-119
References (MISC) https://advisories.stormshield.eu/ - (MISC) https://advisories.stormshield.eu/ - Vendor Advisory
References (MISC) https://advisories.stormshield.eu/2021-020/ - (MISC) https://advisories.stormshield.eu/2021-020/ - Vendor Advisory

31 Jan 2022, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-01-31 16:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-31617

Mitre link : CVE-2021-31617

CVE.ORG link : CVE-2021-31617


JSON object : View

Products Affected

stormshield

  • network_security
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer